Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2025:0758-1

Опубликовано: 28 фев. 2025
Источник: suse-cvrf

Описание

Security update for libxkbfile

This update for libxkbfile fixes the following issues:

  • CVE-2025-26595: Fixed buffer overflow in XkbVModMaskText() (bsc#1237429).

Список пакетов

Image SLES15-SP3-SAP-Azure-LI-BYOS-Production
libxkbfile1-1.0.9-150000.3.3.1
Image SLES15-SP3-SAP-Azure-VLI-BYOS-Production
libxkbfile1-1.0.9-150000.3.3.1
SUSE Enterprise Storage 7.1
libxkbfile-devel-1.0.9-150000.3.3.1
libxkbfile1-1.0.9-150000.3.3.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS
libxkbfile-devel-1.0.9-150000.3.3.1
libxkbfile1-1.0.9-150000.3.3.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS
libxkbfile-devel-1.0.9-150000.3.3.1
libxkbfile1-1.0.9-150000.3.3.1
SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS
libxkbfile-devel-1.0.9-150000.3.3.1
libxkbfile1-1.0.9-150000.3.3.1
SUSE Linux Enterprise High Performance Computing 15 SP5-ESPOS
libxkbfile-devel-1.0.9-150000.3.3.1
libxkbfile1-1.0.9-150000.3.3.1
SUSE Linux Enterprise High Performance Computing 15 SP5-LTSS
libxkbfile-devel-1.0.9-150000.3.3.1
libxkbfile1-1.0.9-150000.3.3.1
SUSE Linux Enterprise Module for Basesystem 15 SP6
libxkbfile-devel-1.0.9-150000.3.3.1
libxkbfile1-1.0.9-150000.3.3.1
SUSE Linux Enterprise Server 15 SP3-LTSS
libxkbfile-devel-1.0.9-150000.3.3.1
libxkbfile1-1.0.9-150000.3.3.1
SUSE Linux Enterprise Server 15 SP4-LTSS
libxkbfile-devel-1.0.9-150000.3.3.1
libxkbfile1-1.0.9-150000.3.3.1
SUSE Linux Enterprise Server 15 SP5-LTSS
libxkbfile-devel-1.0.9-150000.3.3.1
libxkbfile1-1.0.9-150000.3.3.1
SUSE Linux Enterprise Server for SAP Applications 15 SP3
libxkbfile-devel-1.0.9-150000.3.3.1
libxkbfile1-1.0.9-150000.3.3.1
SUSE Linux Enterprise Server for SAP Applications 15 SP4
libxkbfile-devel-1.0.9-150000.3.3.1
libxkbfile1-1.0.9-150000.3.3.1
SUSE Linux Enterprise Server for SAP Applications 15 SP5
libxkbfile-devel-1.0.9-150000.3.3.1
libxkbfile1-1.0.9-150000.3.3.1
SUSE Manager Proxy 4.3
libxkbfile-devel-1.0.9-150000.3.3.1
libxkbfile1-1.0.9-150000.3.3.1
SUSE Manager Server 4.3
libxkbfile-devel-1.0.9-150000.3.3.1
libxkbfile1-1.0.9-150000.3.3.1
openSUSE Leap 15.6
libxkbfile-devel-1.0.9-150000.3.3.1
libxkbfile-devel-32bit-1.0.9-150000.3.3.1
libxkbfile1-1.0.9-150000.3.3.1
libxkbfile1-32bit-1.0.9-150000.3.3.1

Описание

A buffer overflow flaw was found in X.Org and Xwayland. The code in XkbVModMaskText() allocates a fixed-sized buffer on the stack and copies the names of the virtual modifiers to that buffer. The code fails to check the bounds of the buffer and would copy the data regardless of the size.


Затронутые продукты
Image SLES15-SP3-SAP-Azure-LI-BYOS-Production:libxkbfile1-1.0.9-150000.3.3.1
Image SLES15-SP3-SAP-Azure-VLI-BYOS-Production:libxkbfile1-1.0.9-150000.3.3.1
SUSE Enterprise Storage 7.1:libxkbfile-devel-1.0.9-150000.3.3.1
SUSE Enterprise Storage 7.1:libxkbfile1-1.0.9-150000.3.3.1

Ссылки
Уязвимость SUSE-SU-2025:0758-1